PT-2018-1430 · Linux+7 · Linux Kernel+7

Published

2018-06-08

·

Updated

2020-09-18

·

CVE-2018-5390

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions 4.9 and later
Description The issue is related to the functions tcp collapse ofo queue and tcp prune ofo queue in the Linux kernel, which can be exploited to cause a denial of service. This can happen when an attacker sends specially crafted packets, forcing the kernel to make expensive calls for every incoming packet, leading to resource exhaustion. The vulnerability affects TCP connections and exploits the worst-case algorithmic complexity of TCP stream reassembly in Linux kernels.
Recommendations For Linux kernel versions 4.9 and later, update to a version that includes a fix for this issue to prevent exploitation. As a temporary workaround, consider implementing network traffic filtering to restrict the impact of specially crafted packets on the system. Restrict access to the system to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability for Check Point GAiA and Huawei VRP.

Exploit

Fix

DoS

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2192
ALT-PU-2018-2210
ALT-PU-2019-1433
BDU:2018-00979
CESA-2018_2384
CESA-2018_2390
CVE-2018-5390
DLA-1466-1
DSA-4266-1
MGASA-2018-0337
MGASA-2018-0340
MGASA-2018-0341
OPENSUSE-SU-2018_2242-1
OPENSUSE-SU-2018_2404-1
RHSA-2018:2384
RHSA-2018:2390
RHSA-2018:2395
RHSA-2018:2402
RHSA-2018:2403
RHSA-2018:2645
RHSA-2018:2776
RHSA-2018:2785
RHSA-2018:2789
RHSA-2018:2790
RHSA-2018:2791
RHSA-2018:2924
RHSA-2018:2933
RHSA-2018:2948
RHSA-2018_2384
RHSA-2018_2390
RHSA-2018_2395
SUSE-SU-2018:2222-1
SUSE-SU-2018:2223-1
SUSE-SU-2018:2328-1
SUSE-SU-2018:2344-1
SUSE-SU-2018:2344-2
SUSE-SU-2018:2374-1
SUSE-SU-2018:2472-1
SUSE-SU-2018:2474-1
SUSE-SU-2018:2596-1
SUSE-SU-2018:2787-1
SUSE-SU-2018:2860-1
SUSE-SU-2018:2864-1
SUSE-SU-2018:2960-1
SUSE-SU-2018:2961-1
SUSE-SU-2018:2962-1
SUSE-SU-2018:2963-1
SUSE-SU-2018:3029-1
SUSE-SU-2018:3172-1
SUSE-SU-2018:3265-1
SUSE-SU-2018:3328-1
SUSE-SU-2018:3470-1
SUSE-SU-2018:3789-1
SUSE-SU-2019:0955-1
SUSE-SU-2019:14127-1
SUSE-SU-2019:1425-1
SUSE-SU-2019:1767-1
SUSE-SU-2019:1870-1
SUSE-SU-2019:2230-1
SUSE-SU-2019:2601-1
SUSE-SU-2019:2821-1
SUSE-SU-2019_0955-1
SUSE-SU-2019_14127-1
SUSE-SU-2019_1425-1
SUSE-SU-2019_1767-1
SUSE-SU-2019_2230-1
SUSE-SU-2019_2601-1
USN-3732-1
USN-3732-2
USN-3741-1
USN-3741-2
USN-3741-3
USN-3742-1
USN-3742-2
USN-3763-1

Affected Products

Alt Linux
Centos
Check Point Gaia
Huawei Vrp
Linux Kernel
Red Hat
Suse
Ubuntu